Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

rundll vytezuje pc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: rundll vytezuje pc

#16 Příspěvek od vyosek »

:arrow: Odinstalujte Advanced SystemCare a nasledne i vse od IOBit - jsou to cinske smejdy a spise jen skodi nez jsou uzitkem. Hledaji nesmyslne a neexistujici problemy, databazi haveti ukradli jine renomovane spolecnosti

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
    HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
    HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2013-12-18] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2013-12-18] (Adobe Systems Inc.)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27648 2013-12-13] ()
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony)
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Rundll32] => C:\Program Files\Free Noncomercial Software\64bit\hstart64.exe [128128 2013-03-18] (NTWind Software)
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Advanced SystemCare 7] => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2288928 2014-02-11] (IObit)
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [831488 2013-12-13] (ZONER software)
    HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\MountPoints2: {be03cab6-c591-11e3-8268-240a64695ba6} - "E:\Startme.exe" 
    
    BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
    BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
    
    FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Jabko\AppData\Roaming\Mozilla\Firefox\Profiles\f9xl857v.default\Extensions\ascsurfingprotection@iobit.com [2014-05-16]
    
    CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Jabko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-05-16]
    CHR HomePage: 
    
    R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881952 2014-01-14] (IObit)
    S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
    
    2014-05-17 18:08 - 2014-05-17 18:08 - 00112640 _____ (forum.viry.cz) C:\Users\Jabko\Desktop\FRSTLauncher.exe
    2014-05-17 17:27 - 2014-05-17 17:40 - 00000000 ____D () C:\Users\Jabko\Desktop\mbar
    2014-05-17 17:26 - 2014-05-17 14:32 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jabko\Desktop\mbar-1.07.0.1009.exe
    2014-05-17 11:55 - 2014-05-17 11:55 - 00001334 _____ () C:\Users\Jabko\Desktop\1.txt
    2014-05-17 11:35 - 2014-05-17 11:32 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Jabko\Desktop\mbam-setup-2.0.1.1004.exe
    2014-05-17 11:35 - 2014-05-17 11:25 - 01325827 _____ () C:\Users\Jabko\Desktop\adwcleaner_3.208.exe
    2014-05-16 23:01 - 2014-05-16 23:02 - 00000000 ____D () C:\rsit
    2014-05-16 23:01 - 2014-05-16 23:02 - 00000000 ____D () C:\Program Files\trend micro
    2014-05-16 23:01 - 2014-05-16 23:01 - 00935175 _____ () C:\Users\Jabko\Downloads\RSITx64.exe
    2014-05-16 22:58 - 2014-05-16 22:58 - 00401720 _____ (Trend Micro Inc.) C:\Users\Jabko\Downloads\HijackThis.exe
    2014-05-16 22:58 - 2014-05-16 22:58 - 00012239 _____ () C:\Users\Jabko\Downloads\hijackthis.log
    2014-05-16 22:58 - 2014-05-16 22:58 - 00012239 _____ () C:\Users\Jabko\Desktop\hijackthis.log
    2014-05-16 21:47 - 2014-05-17 18:03 - 00008142 _____ () C:\Windows\PFRO.log
    2014-05-16 21:47 - 2014-05-16 21:47 - 74657792 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
    2014-05-16 21:47 - 2014-05-16 21:47 - 00294912 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
    2014-05-16 21:47 - 2014-05-16 21:47 - 00032768 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
    2014-05-16 21:47 - 2014-05-16 21:47 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
    2014-05-16 21:47 - 2014-05-16 21:47 - 00000000 _____ () C:\asc_rdflag
    2014-05-16 21:46 - 2014-02-17 13:41 - 00027456 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe
    2014-05-16 21:43 - 2014-05-16 21:43 - 73695232 _____ () C:\Windows\system32\config\SOFTWARE.iobit
    2014-05-16 21:43 - 2014-05-16 21:43 - 00294912 _____ () C:\Windows\system32\config\DEFAULT.iobit
    2014-05-16 21:43 - 2014-05-16 21:43 - 00032768 _____ () C:\Windows\system32\config\SAM.iobit
    2014-05-16 21:43 - 2014-05-16 21:43 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit
    2014-05-16 21:35 - 2014-05-16 21:46 - 00002221 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
    2014-05-16 21:35 - 2014-05-16 21:35 - 00003094 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
    2014-05-16 21:35 - 2014-05-16 21:35 - 00002396 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator
    2014-05-16 21:35 - 2014-05-16 21:35 - 00002360 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Jabko
    2014-05-16 21:35 - 2014-05-16 21:35 - 00001244 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
    2014-05-16 21:35 - 2014-05-16 21:35 - 00000296 _____ () C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job
    2014-05-16 21:35 - 2014-05-16 21:35 - 00000260 _____ () C:\Windows\Tasks\ASC7_SkipUac_Jabko.job
    2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7
    2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\IObit
    2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
    2014-05-16 21:34 - 2014-05-16 21:35 - 00000000 ____D () C:\Users\Jabko\AppData\Roaming\IObit
    2014-05-16 21:34 - 2014-05-16 21:35 - 00000000 ____D () C:\Program Files (x86)\IObit
    2014-05-16 21:34 - 2014-05-16 21:34 - 00000223 _____ () C:\ASCInit.log
    2014-05-16 21:26 - 2014-05-16 21:33 - 41736680 _____ (IObit ) C:\Users\Jabko\Downloads\advanced-systemcare-setup.exe
    C:\Program Files (x86)\IObit
    C:\Windows\SysWOW64\acumncsnvy.exe
    C:\Windows\SysWOW64\lcpmncsnvy.exe
    C:\Windows\SysWOW64\dcgmncsnvy.exe
    
    Task: C:\Windows\Tasks\ASC7_SkipUac_Jabko.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6c4eeb5fd9f2.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    
    Hosts:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Narmo
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 28 srp 2007 16:57
Kontaktovat uživatele:

Re: rundll vytezuje pc

#17 Příspěvek od Narmo »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-05-2014
Ran by Jabko at 2014-05-17 18:51:56 Run:1
Running from C:\Users\Jabko\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2013-12-18] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2013-12-18] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27648 2013-12-13] ()
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony)
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Rundll32] => C:\Program Files\Free Noncomercial Software\64bit\hstart64.exe [128128 2013-03-18] (NTWind Software)
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Advanced SystemCare 7] => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2288928 2014-02-11] (IObit)
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [831488 2013-12-13] (ZONER software)
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\...\MountPoints2: {be03cab6-c591-11e3-8268-240a64695ba6} - "E:\Startme.exe"

BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)

FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Jabko\AppData\Roaming\Mozilla\Firefox\Profiles\f9xl857v.default\Extensions\ascsurfingprotection@iobit.com [2014-05-16]

CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Jabko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-05-16]
CHR HomePage:

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881952 2014-01-14] (IObit)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)

2014-05-17 18:08 - 2014-05-17 18:08 - 00112640 _____ (forum.viry.cz) C:\Users\Jabko\Desktop\FRSTLauncher.exe
2014-05-17 17:27 - 2014-05-17 17:40 - 00000000 ____D () C:\Users\Jabko\Desktop\mbar
2014-05-17 17:26 - 2014-05-17 14:32 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jabko\Desktop\mbar-1.07.0.1009.exe
2014-05-17 11:55 - 2014-05-17 11:55 - 00001334 _____ () C:\Users\Jabko\Desktop\1.txt
2014-05-17 11:35 - 2014-05-17 11:32 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Jabko\Desktop\mbam-setup-2.0.1.1004.exe
2014-05-17 11:35 - 2014-05-17 11:25 - 01325827 _____ () C:\Users\Jabko\Desktop\adwcleaner_3.208.exe
2014-05-16 23:01 - 2014-05-16 23:02 - 00000000 ____D () C:\rsit
2014-05-16 23:01 - 2014-05-16 23:02 - 00000000 ____D () C:\Program Files\trend micro
2014-05-16 23:01 - 2014-05-16 23:01 - 00935175 _____ () C:\Users\Jabko\Downloads\RSITx64.exe
2014-05-16 22:58 - 2014-05-16 22:58 - 00401720 _____ (Trend Micro Inc.) C:\Users\Jabko\Downloads\HijackThis.exe
2014-05-16 22:58 - 2014-05-16 22:58 - 00012239 _____ () C:\Users\Jabko\Downloads\hijackthis.log
2014-05-16 22:58 - 2014-05-16 22:58 - 00012239 _____ () C:\Users\Jabko\Desktop\hijackthis.log
2014-05-16 21:47 - 2014-05-17 18:03 - 00008142 _____ () C:\Windows\PFRO.log
2014-05-16 21:47 - 2014-05-16 21:47 - 74657792 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2014-05-16 21:47 - 2014-05-16 21:47 - 00294912 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak
2014-05-16 21:47 - 2014-05-16 21:47 - 00032768 _____ () C:\Windows\system32\config\SAM.iodefrag.bak
2014-05-16 21:47 - 2014-05-16 21:47 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak
2014-05-16 21:47 - 2014-05-16 21:47 - 00000000 _____ () C:\asc_rdflag
2014-05-16 21:46 - 2014-02-17 13:41 - 00027456 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe
2014-05-16 21:43 - 2014-05-16 21:43 - 73695232 _____ () C:\Windows\system32\config\SOFTWARE.iobit
2014-05-16 21:43 - 2014-05-16 21:43 - 00294912 _____ () C:\Windows\system32\config\DEFAULT.iobit
2014-05-16 21:43 - 2014-05-16 21:43 - 00032768 _____ () C:\Windows\system32\config\SAM.iobit
2014-05-16 21:43 - 2014-05-16 21:43 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit
2014-05-16 21:35 - 2014-05-16 21:46 - 00002221 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-05-16 21:35 - 2014-05-16 21:35 - 00003094 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2014-05-16 21:35 - 2014-05-16 21:35 - 00002396 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator
2014-05-16 21:35 - 2014-05-16 21:35 - 00002360 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Jabko
2014-05-16 21:35 - 2014-05-16 21:35 - 00001244 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-05-16 21:35 - 2014-05-16 21:35 - 00000296 _____ () C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job
2014-05-16 21:35 - 2014-05-16 21:35 - 00000260 _____ () C:\Windows\Tasks\ASC7_SkipUac_Jabko.job
2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7
2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\IObit
2014-05-16 21:35 - 2014-05-16 21:35 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-05-16 21:34 - 2014-05-16 21:35 - 00000000 ____D () C:\Users\Jabko\AppData\Roaming\IObit
2014-05-16 21:34 - 2014-05-16 21:35 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-05-16 21:34 - 2014-05-16 21:34 - 00000223 _____ () C:\ASCInit.log
2014-05-16 21:26 - 2014-05-16 21:33 - 41736680 _____ (IObit ) C:\Users\Jabko\Downloads\advanced-systemcare-setup.exe
C:\Program Files (x86)\IObit
C:\Windows\SysWOW64\acumncsnvy.exe
C:\Windows\SysWOW64\lcpmncsnvy.exe
C:\Windows\SysWOW64\dcgmncsnvy.exe

Task: C:\Windows\Tasks\ASC7_SkipUac_Jabko.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6c4eeb5fd9f2.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

Hosts:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NvBackend => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Service 16 => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Sony PC Companion => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Rundll32 => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Advanced SystemCare 7 => Value not found.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Zoner Photo Studio Autoupdate => Value deleted successfully.
HKU\S-1-5-21-3490035796-2631308569-556189937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{be03cab6-c591-11e3-8268-240a64695ba6} => Key deleted successfully.
HKCR\CLSID\{be03cab6-c591-11e3-8268-240a64695ba6} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} => Key not found.
HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => Key not found.
HKCR\Wow6432Node\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => Key not found.
C:\Users\Jabko\AppData\Roaming\Mozilla\Firefox\Profiles\f9xl857v.default\Extensions\ascsurfingprotection@iobit.com not found.
C:\Users\Jabko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd => Moved successfully.
AdvancedSystemCareService7 => Service not found.
LiveUpdateSvc => Service deleted successfully.
C:\Users\Jabko\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Jabko\Desktop\mbar => Moved successfully.
C:\Users\Jabko\Desktop\mbar-1.07.0.1009.exe => Moved successfully.
C:\Users\Jabko\Desktop\1.txt => Moved successfully.
C:\Users\Jabko\Desktop\mbam-setup-2.0.1.1004.exe => Moved successfully.
C:\Users\Jabko\Desktop\adwcleaner_3.208.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Jabko\Downloads\RSITx64.exe => Moved successfully.
C:\Users\Jabko\Downloads\HijackThis.exe => Moved successfully.
C:\Users\Jabko\Downloads\hijackthis.log => Moved successfully.
C:\Users\Jabko\Desktop\hijackthis.log => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\Windows\system32\config\SOFTWARE.iodefrag.bak => Moved successfully.
C:\Windows\system32\config\DEFAULT.iodefrag.bak => Moved successfully.
C:\Windows\system32\config\SAM.iodefrag.bak => Moved successfully.
C:\Windows\system32\config\SECURITY.iodefrag.bak => Moved successfully.
C:\asc_rdflag => Moved successfully.
C:\Windows\system32\RegistryDefragBootTime.exe => Moved successfully.
C:\Windows\system32\config\SOFTWARE.iobit => Moved successfully.
C:\Windows\system32\config\DEFAULT.iobit => Moved successfully.
C:\Windows\system32\config\SAM.iobit => Moved successfully.
C:\Windows\system32\config\SECURITY.iobit => Moved successfully.
"C:\Users\Public\Desktop\Advanced SystemCare 7.lnk" => File/Directory not found.
"C:\Windows\System32\Tasks\ASC7_PerformanceMonitor" => File/Directory not found.
"C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator" => File/Directory not found.
C:\Windows\System32\Tasks\ASC7_SkipUac_Jabko => Moved successfully.
"C:\Users\Public\Desktop\IObit Uninstaller.lnk" => File/Directory not found.
"C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job" => File/Directory not found.
C:\Windows\Tasks\ASC7_SkipUac_Jabko.job => Moved successfully.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 7" => File/Directory not found.
C:\ProgramData\IObit => Moved successfully.
C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} => Moved successfully.
C:\Users\Jabko\AppData\Roaming\IObit => Moved successfully.
C:\Program Files (x86)\IObit => Moved successfully.
C:\ASCInit.log => Moved successfully.
C:\Users\Jabko\Downloads\advanced-systemcare-setup.exe => Moved successfully.
"C:\Program Files (x86)\IObit" => File/Directory not found.
"C:\Windows\SysWOW64\acumncsnvy.exe" => File/Directory not found.
"C:\Windows\SysWOW64\lcpmncsnvy.exe" => File/Directory not found.
"C:\Windows\SysWOW64\dcgmncsnvy.exe" => File/Directory not found.
C:\Windows\Tasks\ASC7_SkipUac_Jabko.job not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6c4eeb5fd9f2.job => Moved successfully.
C:\Windows\Tasks\Uninstaller_SkipUac_Administrator.job not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

==== End of Fixlog ====
nejdriv sem odinstaloval ale nedal reset doufam ze to neni problem

Narmo
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 28 srp 2007 16:57
Kontaktovat uživatele:

Re: rundll vytezuje pc

#18 Příspěvek od Narmo »

odintalova > sputil fix > dal reset > postnul log tak to myslim

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: rundll vytezuje pc

#19 Příspěvek od vyosek »

OuKej, rundll stale vytezu CPU?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Narmo
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 28 srp 2007 16:57
Kontaktovat uživatele:

Re: rundll vytezuje pc

#20 Příspěvek od Narmo »

zatim nic

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: rundll vytezuje pc

#21 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Narmo
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 28 srp 2007 16:57
Kontaktovat uživatele:

Re: rundll vytezuje pc

#22 Příspěvek od Narmo »

Děkuji, za pomoc a za Váš čas.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: rundll vytezuje pc

#23 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno